Free Assessment · No Login Required

Your S.I.N.S.
Security Score

Answer 20 questions across the four pillars of the S.I.N.S. Framework™. Get an instant score, a prioritised finding list, and a clear next step — in under 5 minutes.

20 questions 4 pillars Instant results Kenyan context
S — Systems I — Infrastructure N — Network S — Security Results
S
Pillar 1 · Foundation Layer
Systems
Endpoints, identity, access control and enterprise applications.
Does your organisation maintain an up-to-date inventory of all devices (laptops, desktops, phones, servers) that access your systems?
Is Multi-Factor Authentication (MFA) enforced on your email, Microsoft 365, or any cloud system staff use?
When a staff member leaves, are their accounts and access revoked within 24 hours?
Are all endpoints (staff laptops/desktops) running active, managed endpoint protection (antivirus / EDR) with a central management console?
Does your organisation apply security patches and OS updates to all systems within 30 days of release?
I
Pillar 2 · Operational Layer
Infrastructure
Servers, backup, recovery and cloud environments.
Does your organisation have a documented backup procedure that runs automatically on a defined schedule?
Has your organisation performed a tested backup restore in the last 6 months — confirming data can actually be recovered?
Do you have a defined Recovery Time Objective (RTO) — a documented maximum acceptable downtime if your systems fail?
Are your servers and cloud environments configured against a security baseline (e.g. unnecessary services disabled, strong admin passwords, audit logging enabled)?
If your primary system or office became unavailable today, could your organisation continue critical operations from an alternate location or cloud system?
N
Pillar 3 · Connectivity Layer
Network
Perimeter, connectivity, access control and monitoring.
Does your organisation have a configured firewall with a reviewed rule set — not just the default router settings from your ISP?
Is your guest WiFi or visitor network separated from your internal staff and systems network?
Does your organisation use a VPN or secure remote access solution for staff working outside the office?
Is there any network traffic monitoring or logging in place that would detect unusual activity (e.g. large data transfers, unknown devices)?
Is access to your network controlled so that only authorised devices (known laptops, phones) can connect — not any device that knows the WiFi password?
S
Pillar 4 · Governance Layer
Security
Policies, compliance, risk management and incident response.
Does your organisation have a written Information Security Policy that staff have read and acknowledged?
Does your organisation have a documented Incident Response procedure — a step-by-step plan for what to do if you are hacked, lose data, or suffer a breach?
Is your organisation registered with the Office of the Data Protection Commissioner (ODPC) as required by the Kenya Data Protection Act?
Has your organisation conducted a formal risk assessment in the last 12 months to identify and document your top cybersecurity risks?
Do staff receive security awareness training at least once a year — including how to spot phishing, handle data, and report incidents?

Almost there — your score is ready

Enter your details to receive your personalised S.I.N.S. score and finding report.

Your results appear instantly. RETACH may contact you about a follow-up assessment. No spam.

Analysing your responses…
Scoring across all four S.I.N.S. pillars
0
/ 100

Your next step is clear.

A full S.I.N.S. Health Scan maps every gap found above to a prioritised remediation plan — with fixed timelines and costs. No surprises.

Full Health Scan KES 45,000 (≈ USD 150) · Delivered in 5 days
Book Your Health Scan →
Or email us directly: info@retach.tech · WhatsApp